积极预防 及时发现
快速响应 力保恢复
使用基于Engine2的IOS 12.0和line cards的Cisco 12000不能在一个用于...
发布时间:2001-12-06 信息来源:管理员

CNCVE编号:CNCVE-20010863 CVE编号:CAN-2001-0863 安全级别:中 漏洞中文描述: 使用基于Engine2的IOS 12.0和line cards的Cisco 12000不能在一个用于处理发送到路由器中的包的已编译的ACL(Turbo ACL)中处理fragment关键字,这允许远程攻击者通过包洪水来引发拒绝服务。 漏洞英文描述: Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not handle the "fragment" keyword in a compiled ACL (Turbo ACL) for packets that are sent to the router, which allows remote attackers to cause a denial of service via a flood of fragments. 漏洞参考: Reference: CISCO:20011114 Multiple Vulnerabilities in Access Control List Implementation for Cisco 12000 Series Internet Router Reference: URL:http://www.cisco.com/warp/public/707/GSR-ACL-pub.shtml 系统类型: 其他 漏洞类型:设计错误